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Fig. 1 TRADITIONAL PK1 
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Fig. 2 HETEROGENEOUS PK1 
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Fig. 3 
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GENERATE A PK KEY PAIR; GET A SOFTWARE SIGNING 
CERTIFICATE FROM A CERTIFYING AUTHORITY 



GET THE PUBLIC KEY CERTIFICATE THE SERVER USES 



CREATE A SIGNED MESSAGE CONTAINING 
THE SERVER'S PUBLIC KEY CERTIFICATE; CREATE A 
CERTIFICATE APPLET THAT KNOWS WHERE TO STORE 
THE CERTIFICATE SO THE CLIENT CAN FIND IT 



POST SIGNED CERTIFICATE APPLET 
AND SIGNED CLIENT APPLET 



INVOKE CERTIFICATE APPLET IN RESPONSE TO 
CLIENT REQUEST FOR A SECURE CONNECTION 



CERTIFICATE APPLET CAUSES CLIENT (BROWSER) TO 
VERIFY AND SAVE THE SERVER'S CERTIFICATE 



CERTIFICATE APPLET INVOKES MAIN CLIENT APPLET 
TO ESTABLISH A SECURE CONNECTION 
USING THE SERVER'S CERTIFICATE 



( END ) 
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Fig. 4 
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ROUTINE TO STORE CERTIFICATE 



ROUTINE TO VERIFY SIGNATURE 
ON DATA USING CERTIFICATE 



Fig. 5 EXAMPLE ARCHIVE 



